<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HeXeЯ &#187; SQL</title>
	<atom:link href="http://blog.hexnet.biz/category/sql/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.hexnet.biz</link>
	<description>[ Spam 3.0 ]</description>
	<lastBuildDate>Sat, 03 Apr 2010 22:55:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>MySQL query that find duplicates&#8230;</title>
		<link>http://blog.hexnet.biz/2009/04/07/mysql-query-that-find-duplicates/</link>
		<comments>http://blog.hexnet.biz/2009/04/07/mysql-query-that-find-duplicates/#comments</comments>
		<pubDate>Tue, 07 Apr 2009 10:07:32 +0000</pubDate>
		<dc:creator>HeXeR</dc:creator>
				<category><![CDATA[SQL]]></category>

		<guid isPermaLink="false">http://blog.hexnet.biz/?p=226</guid>
		<description><![CDATA[SELECT `url`, count(*) as `n` FROM `table_name` GROUP BY `url` HAVING `n` &#62; 1 ORDER BY `n` DESC]]></description>
			<content:encoded><![CDATA[<p><code>SELECT `url`, count(*) as `n`<br />
FROM `table_name`<br />
GROUP BY `url`<br />
HAVING `n` &gt; 1<br />
ORDER BY `n` DESC</code></p>
<p><img src='http://blog.hexnet.biz/wp-content/plugins/tango-smileys-extended/tango/grin.png' alt='Grin' title='Grin' class='tse-smiley' /></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.hexnet.biz/2009/04/07/mysql-query-that-find-duplicates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQL</title>
		<link>http://blog.hexnet.biz/2008/05/01/sql/</link>
		<comments>http://blog.hexnet.biz/2008/05/01/sql/#comments</comments>
		<pubDate>Thu, 01 May 2008 18:25:19 +0000</pubDate>
		<dc:creator>HeXeR</dc:creator>
				<category><![CDATA[SQL]]></category>
		<category><![CDATA[SQL Injection]]></category>

		<guid isPermaLink="false">http://www.hexnet.biz/blog/?p=134</guid>
		<description><![CDATA[%2527 trick &#8230; No. zakaj gre pri %2527 Triku ? Če imamo kakšno preverjanje tega kar nam pošlje uporabnik (POST, GET, ..) in iščemo enojni narekovaj, lahko s tem v določenih primerih &#8220;pridemo mimo&#8221;. Če spustimo skozi, urldecode za string %2527 dobimo %27 in če gre urldecode še enkrat skozi dobimo enojni narekovaj, dalje pa [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://sla.ckers.org/forum/read.php?16,20426">%2527 trick &#8230;</a><br />
No. zakaj gre pri %2527 Triku ? Če imamo kakšno preverjanje tega kar nam pošlje uporabnik (POST, GET, ..) in iščemo enojni narekovaj, lahko s tem v določenih primerih &#8220;pridemo mimo&#8221;.</p>
<p>Če spustimo skozi, urldecode za string %2527 dobimo %27 in če gre urldecode še enkrat skozi dobimo enojni narekovaj, dalje pa vemo kako in kaj &#8230; <img src='http://blog.hexnet.biz/wp-content/plugins/tango-smileys-extended/tango/smile.png' alt='Smile' title='Smile' class='tse-smiley' /> .</p>
<p>Še nekaj povezav &#8230;<br />
<a href="http://ha.ckers.org/sqlinjection/">sql injection by Rsnake</a><br />
<a href="http://www.justinshattuck.com/2007/01/18/mysql-injection-cheat-sheet/">sql injection by Justin Shattuck</a><br />
<a href="http://ferruh.mavituna.com/sql-injection-cheatsheet-oku/">sql injection by &#8230;</a><br />
<a href="http://www.scottklarr.com/topic/102/mysql-cheat-sheets/">MySQL cheat sheets</a></p>
<p>in pa &#8230;<br />
<a href="http://si.php.net/mysql_real_escape_string">mysql_real_escape_string</a><br />
<a href="http://websec.wordpress.com/2007/11/11/mysql-inputoutput-validation/">mysql-inputoutput-validation</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.hexnet.biz/2008/05/01/sql/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
